Vulnerabilities
Vulnerable Software
Apple:  >> Mac Os X  >> 10.0.0  Security Vulnerabilities
In macOS High Sierra before 10.13.5, an issue existed in CUPS. This issue was addressed with improved access restrictions.
CVSS Score
5.5
EPSS Score
0.001
Published
2019-01-11
In macOS High Sierra before 10.13.5, an access issue was addressed with additional sandbox restrictions on CUPS.
CVSS Score
8.2
EPSS Score
0.001
Published
2019-01-11
In macOS High Sierra before 10.13.5, an access issue was addressed with additional sandbox restrictions.
CVSS Score
8.2
EPSS Score
0.001
Published
2019-01-11
In iOS before 11.3, tvOS before 11.3, watchOS before 4.3, and macOS before High Sierra 10.13.4, an information disclosure issue existed in the transition of program state. This issue was addressed with improved state handling.
CVSS Score
7.5
EPSS Score
0.04
Published
2019-01-11
In macOS High Sierra before 10.13.2, an access issue existed with privileged WiFi system configuration. This issue was addressed with additional restrictions.
CVSS Score
6.5
EPSS Score
0.004
Published
2019-01-11
In macOS High Sierra before 10.13.2, a logic issue existed in APFS when deleting keys during hibernation. This was addressed with improved state management.
CVSS Score
7.5
EPSS Score
0.002
Published
2019-01-11
Perl before 5.26.3 and 5.28.x before 5.28.1 has a buffer overflow via a crafted regular expression that triggers invalid write operations.
CVSS Score
9.8
EPSS Score
0.035
Published
2018-12-07
Perl before 5.26.3 has a buffer over-read via a crafted regular expression that triggers disclosure of sensitive information from process memory.
CVSS Score
9.1
EPSS Score
0.014
Published
2018-12-07
Bluetooth firmware or operating system software drivers in macOS versions before 10.13, High Sierra and iOS versions before 11.4, and Android versions before the 2018-06-05 patch may not sufficiently validate elliptic curve parameters used to generate public keys during a Diffie-Hellman key exchange, which may allow a remote attacker to obtain the encryption key used by the device.
CVSS Score
8.0
EPSS Score
0.008
Published
2018-08-07
CVE-2018-4990
Known exploited
Adobe Acrobat and Reader versions 2018.011.20038 and earlier, 2017.011.30079 and earlier, and 2015.006.30417 and earlier have a Double Free vulnerability. Successful exploitation could lead to arbitrary code execution in the context of the current user.
CVSS Score
8.8
EPSS Score
0.601
Published
2018-07-09


Contact Us

Shodan ® - All rights reserved